dl.yac-tech.com

xianlin xie

Domain Information

The domain dl.yac-tech.com registered by xianlin xie was initially registered in January of 2015 through GODADDY.COM, LLC. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Dallas, Texas within the United States which resides on the SoftLayer Technologies Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Texas, United States (US)

Create date:
Monday, January 26, 2015

Expires date:
Thursday, January 26, 2017

Updated date:
Tuesday, January 26, 2016

ASN:
AS36351 SOFTLAYER - SoftLayer Technologies Inc.,US

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Optional.Installer.ELEX, Win32.Generic.Installer.ELEX, Threat.Installer.ELEX, Win32.Generic.Installer.ELEX.Meta, Win32.Generic.ELEX.Installer.Meta, PUP.ELEX.YAC.Installer.Meta (L)
100.00%

Malwarebytes
FraudTool.YAC, PUP.Optional.ELEX
75.00%

Dr.Web
Adware.Mutabaha.168, Adware.Mutabaha.174, Adware.Mutabaha.456, Adware.Mutabaha.790
50.00%

Bkav FE
W32.HfsAdware
50.00%

G Data
Win32.Trojan.Agent.2DNFTX, Win32.Application.Elex
45.83%

IKARUS anti.virus
Virus.Win32.PolyCrypt, PUA.Elex
33.33%

Trend Micro House Call
Suspicious_GEN.F47V0312, Suspicious_GEN.F47V0330, Suspicious_GEN.F47V0420, Suspicious_GEN.F47V0421, Suspicious_GEN.F47V0511
25.00%

ESET NOD32
Win32/ELEX.CC potentially unwanted (variant)
16.67%

McAfee
Artemis!FF4812AA6342, Artemis!E497222C8947, Artemis!DD797EEDB4B2, Trojan.Artemis!3C8EE7D0777C
16.67%

AhnLab V3 Security
PUP/Win32.Generic
12.50%

Fortinet FortiGate
Riskware/Elex
8.33%

ESET NOD32
Win32/ELEX.CC potentially unwanted application, Win32/ELEX.CZ potentially unwanted application
8.33%

Panda Antivirus
PUP/YAC
8.33%

avast!
Win32:Adware-gen [Adw]
4.17%

Kaspersky
not-a-virus:Downloader.Win32.Elex
4.17%

The domain dl.yac-tech.com has been seen to resolve to the following 3 IP addresses.

18.00.7e4b.ip4.static.sl-reverse.com
July 17, 2016

75.126.133.148-static.reverse.softlayer.com
March 31, 2015

75.126.133.149-static.reverse.softlayer.com
March 31, 2015

File downloads found at URLs served by dl.yac-tech.com.

6 / 68      (PUP)

4 / 68      (PUP)

6 / 68      (PUP)

6 / 68      (PUP)

4 / 68      (PUP)
http://dl.yac-tech.com/download/.../yet_another_cleaner_gam_setup_18184.exe  (yet_another_cleaner_ava_setup_10607083075.exe)

6 / 68      (PUP)

1 / 68      (PUP)

6 / 68      (PUP)

4 / 68      (PUP)

9 / 68      (PUP)

6 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

1 / 68      (PUP)

6 / 68      (PUP)

1 / 68      (PUP)

5 / 68      (PUP)

6 / 68      (PUP)

1 / 68      (PUP)

 
Latest 30 of 140 download URLs

The following 4 files have been seen to comunicate with dl.yac-tech.com in live environments.

URL:
http://dl.yac-tech.com/

Web server:
nginx